Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.5 CVE-2025-70100

CVE-2025-70100_CVE-2025-70100

A divide-by-zero vulnerability in the ext4_block_set_lb_size function in src/ext4_blockdev.c of the lwext4 1.0.0 library allows attackers to cause ...

n/a n/a n/a CVE
MEDIUM 5 CVE-2025-60477

CVE-2025-60477_CVE-2025-60477

A NULL pointer dereference in the gf_filter_pid_resolve_file_template_ex function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0...

n/a n/a n/a CVE
MEDIUM 6.3 CVE-2026-39107

CVE-2026-39107_CVE-2026-39107

A Cross Site Scripting vulnerability exists in the Kimi AI v1.0 web interface's 'Preview' feature. The application fails to properly sanitize or en...

n/a n/a n/a CVE
MEDIUM 4.3 CVE-2026-36615

CVE-2026-36615_CVE-2026-36615

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 exposes an undocumented /agileconfigreset endpoint that returns internal buffer contents t...

n/a n/a n/a CVE
MEDIUM 4.3 CVE-2026-36613

CVE-2026-36613_CVE-2026-36613

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized internal buffer contents when receiving HTTP POST reque...

n/a n/a n/a CVE
MEDIUM 6.5 CVE-2026-36605

CVE-2026-36605_CVE-2026-36605

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 is vulnerable to a HTTP denial of service via a low number of crafted incomplete HT...

n/a n/a n/a CVE
MEDIUM 6.1 CVE-2026-20233

Cisco Webex Meetings Cross-Site Scripting Vulnerability_CVE-2026-20233

A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-s...

Cisco Cisco Webex Meetings 39.7.7 CVE
MEDIUM 6.1 CVE-2026-20175

Cisco Finesse File Inclusion Vulnerability_CVE-2026-20175

A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user ...

Cisco Cisco Finesse 11.0(1)ES_Rollback CVE
MEDIUM 4.4 CVE-2026-45702

OP-TEE has FF-A type confusion in SPMC tmem path that causes S-EL1 kernel panic_CVE-2026-45702

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZo...

OP-TEE optee_os >= 4.3.0, < 4.11.0 CVE
MEDIUM 4.7 CVE-2026-45614

OP-TEE vulnerable to ECDH private key recovery_CVE-2026-45614

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZo...

OP-TEE optee_os < 4.11.0 CVE